Computer and Modernization ›› 2024, Vol. 0 ›› Issue (07): 93-99.doi: 10.3969/j.issn.1006-2475.2024.07.014

Previous Articles     Next Articles

Security Game Analysis Model of RFID System Based on Bayesian Attack Graph

  

  1. (1. School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing 210023, China; 2. Institute of Network Security and Trusted Computing, Nanjing University of Posts and Telecommunications, Nanjing 210023, China)
  • Online:2024-07-25 Published:2024-08-08

Abstract: In view of the lack of comprehensive and effective risk management and security assessment of RFID systems, in order to achieve effective analysis of the security risks of RFID systems and the assessment of the overall risk status of target RFID systems, this paper proposes a Bayesian attack graph-based RFID system security game analysis method. On the basis of Bayesian attack graph model, combined with game thought, the risk situation of RFID system is analyzed, and the process of the attacker invading the system is abstracted into the game model of the attack and defense. This paper firstly determines the offensive and defensive strategy based on the relevant information of the target system, and constructs the corresponding offensive and defensive game matrix by calculating the strategic income of the attacker and the defender, then obtains the Nash equilibrium state, determines the optimal strategy of each participant, and finally calculates the expected income of both parties to determine the security state of the target RFID system: If the expected return of the attacker is greater than the expected return of the defender, the system is in the risk state; otherwise, the system is in the security state. The experiment results show that the game model proposed in this paper can well realize the security analysis of target RFID system.

Key words:  , RFID, Bayesian attack graph, security game analysis

CLC Number: